프로그램분석

[filecook] Install log : 64ms / 2012-12-20

프로세스 천국 2012. 12. 20. 10:01

----------------------------------------------------------------------
Created by Windowexe.com , Logfile of WindowexeAllkiller
----------------------------------------------------------------------
Windows 7 Ultimate Service Pack 1(6.1.7601.65536)
Intel(R) Core(TM) i3 CPU       M 380  @ 2.53GHz / 1,023.55 MB
Intel64 Family 6 Model 37 Stepping 5
Date : 2012-12-20
----------------------------------------------------------------------
DF000 C:\KMC\AX\KMCWebManager\1.2\KMCWebManager.dll
DF001 C:\KMC\InfoScan\gdiplus.dll
DF002 C:\KMC\InfoScan\InfoScan.exe
DF003 C:\KMC\InfoScan\InfoScan_Resource.dll
DF004 C:\KMC\InfoScan\InfoScanMgr.exe
DF005 C:\KMC\InfoScan\InfoSupport.exe
DF006 C:\KMC\InfoScan\InfoSvc.exe
DF007 C:\KMC\InfoScan\InfoUpdate.exe
DF008 C:\KMC\InfoScan\InfoWrk.exe
DF009 C:\KMC\InfoScan\KMCWebManager.dll
DF010 C:\KMC\InfoScan\mfc71.dll
DF011 C:\KMC\InfoScan\msvcp71.dll
DF012 C:\KMC\InfoScan\msvcr71.dll
DF013 C:\KMC\InfoScan\msvcrt.dll
DF014 C:\KMC\InfoScan\OpenPot.exe
DF015 C:\KMC\Svc\InfoSvc.exe
DF016 C:\Program Files (x86)\IESide\IESide.exe
DF017 C:\Program Files (x86)\IESide\IESide_ex.dll
DF018 C:\Program Files (x86)\IESide\IESide_uninst.exe
DF019 C:\Program Files (x86)\IETab\IETab.dll
DF020 C:\Program Files (x86)\IETab\IETab.exe
DF021 C:\Program Files (x86)\InstallShield Installation Information\{A8BB2E98-EA08-4033-977B-F5BB9387ABAB}\ISSetup.dll
DF022 C:\Program Files (x86)\InstallShield Installation Information\{A8BB2E98-EA08-4033-977B-F5BB9387ABAB}\setup.exe
DF023 C:\Program Files (x86)\KeywordInfo\Wkip.exe
DF024 C:\Program Files (x86)\KeywordInfo\WkipUpdate.exe
DF025 C:\Program Files (x86)\vaccinedoctor\EGutil.dll
DF026 C:\Program Files (x86)\vaccinedoctor\EZcore.dll
DF027 C:\Program Files (x86)\vaccinedoctor\vaccinedoctor.exe
DF028 C:\Program Files (x86)\vaccinedoctor\vaccinedoctor_se.exe
DF029 C:\Program Files (x86)\vaccinedoctor\vaccinedoctor_uninst.exe
DF030 C:\Program Files (x86)\vaccinedoctor\vaccinedoctord.dll
DF031 C:\Program Files (x86)\vaccinedoctor\vaccinedoctoru.exe
DF032 C:\Program Files (x86)\WinPro\Helper.dll
DF033 C:\Program Files (x86)\WinPro\WinPro.dll
DF034 C:\Program Files (x86)\WinPro\WinPro.exe
DF035 C:\Program Files (x86)\WizSearch\WizSearch.exe
DF036 C:\Program Files (x86)\WizSearch\WizSearch_Helper.dll
DF037 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMC\InfoScan 무료 개인정보유출진단\InfoScan 무료 개인정보유출진단.lnk
DF038 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMC\InfoScan 무료 개인정보유출진단\InfoScan 제거.lnk
DF039 C:\ProgramData\Microsoft\Windows\Templates\filecook_.exe
DF040 C:\Users\Administrator\AppData\Local\Temp\IETab__IE06.exe
DF041 C:\Users\Administrator\AppData\Local\Temp\ISSetupAX\ISSetup.dll
DF042 C:\Users\Administrator\AppData\Local\Temp\ISSetupAX\setup.exe
DF043 C:\Users\Administrator\AppData\Local\Temp\WinPro__WP25.exe
DF044 C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Templates\KeywordInfo_77.exe
DF045 C:\Users\Administrator\Desktop\ChaosOne.exe
DF046 C:\Windows\updateuserinforeset.exe
----------------------------------------------------------------------
SC047 vaccinedoctor Update Service -/- vaccinedoctor Support Service -/- - -/-  -/- "C:\Windows\updateuserinforeset.exe" /update
SC048 vaccinedoctor-Service -/- vaccinedoctor-Service -/- - -/-  -/- C:\Program Files (x86)\vaccinedoctor\vaccinedoctor_se.exe
SC049 InfoSvc -/- InfoScan Manager -/- - -/-  -/- C:\KMC\Svc\InfoSvc.exe
----------------------------------------------------------------------
UN050 Windows IESide -/- - -/- IESide -/- - -/- -
UN051 IETab -/- NBZ -/- IETab -/- - -/- -
UN052 updateuserinforeset -/- - -/- updateuserinforeset -/- hxxp://vaccinedoctor.co.kr -/- hxxp://vaccinedoctor.co.kr
UN053 vaccinedoctor -/- - -/- vaccinedoctor -/- hxxp://www.vaccinedoctor.co.kr -/- hxxp://www.vaccinedoctor.co.kr
UN054 WinPro -/- NBIZ -/- WinPro -/- - -/- -
UN055 WS live webControl -/- - -/- WizSearch -/- - -/- -
UN056 KeywordInfo -/- - -/- {3ED12C21-18E3-4401-B4DA-4D96F0565CFA}_is1 -/- - -/- -
UN057 InfoScan 무료 개인정보유출진단 -/- KMC -/- {A8BB2E98-EA08-4033-977B-F5BB9387ABAB} -/- hxxp://www.infoscan.co.kr -/- -
TS058 IESide
TS059 KeywordInfo
TS060 WizSearch
----------------------------------------------------------------------
US061 IESide -/- C:\Program Files (x86)\IESide\IESide.exe
US062 WizSearch -/- C:\Program Files (x86)\WizSearch\WizSearch.exe
LS063 WinPro -/- C:\Program Files (x86)\WinPro\WinPro.exe
LS064 IETab -/- C:\Program Files (x86)\IETab\IETab.exe
LS065 InfoScan Worker -/- C:\KMC\InfoScan\InfoWrk.exe /I
----------------------------------------------------------------------
BH066 WinPro -/- C:\Program Files (x86)\WinPro\WinPro.dll -/- {339E5541-DA75-412A-9F9B-3C014BE1050B}
BH067 WizSearch Class -/- C:\Program Files (x86)\WizSearch\WizSearch_Helper.dll -/- {6323EB95-40E2-4b6e-90FC-B32D3F7A290C}
BH068 IETab -/- C:\Program Files (x86)\IETab\IETab.dll -/- {B60FE1D2-2F84-42a7-AE04-03284738CC24}
BH069 IESide Class -/- C:\Program Files (x86)\IESide\IESide_ex.dll -/- {B6B8853B-48D3-4BA7-91E2-C72BC7983909}
EXADD Shockwave Flash Object -/- C:\Windows\system32\Macromed\Flash\Flash64_11_1_102.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
EXADD Shockwave Flash Object -/- C:\Windows\SysWOW64\Macromed\Flash\Flash11g.ocx -/- {D27CDB6E-AE6D-11CF-96B8-444553540000}
----------------------------------------------------------------------
Deleted Files : 47
Remove Service : 3
Remove Uninstall Entry : 8
Remove Startup Entry : 5
Remove Browser Helper Object : 4
----------------------------------------------------------------------
Remove these Entry in a WindowexeAllkiller.txt file. Save and Run.
WindowexeAllkiller Remove Database 2012-12-20
[01-HKCUREG]**IESide
[01-HKCUREG]**WizSearch
[02-HKLMREG]**WinPro
[02-HKLMREG]**IETab
[02-HKLMREG]**InfoScan Worker
[03-BHOCLSD]**{339E5541-DA75-412A-9F9B-3C014BE1050B}
[03-BHOCLSD]**{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}
[03-BHOCLSD]**{B60FE1D2-2F84-42a7-AE04-03284738CC24}
[03-BHOCLSD]**{B6B8853B-48D3-4BA7-91E2-C72BC7983909}
[05-SERVICE]**vaccinedoctor Update Service
[05-SERVICE]**vaccinedoctor-Service
[05-SERVICE]**InfoSvc
----------------------------------------------------------------------
Total Processing Time : 64ms
----------------------------------------------------------------------
NA001 ======================================================================
NA002 echo Created by Windowexe.com / do not delete this label.
NA003 ======================================================================
NA004 echo Start
NA005 echo windowexe.com & tskill "vaccinedoctor" & echo windowdel.com
NA006 echo windowexe.com & tskill "vaccinedoctor" & echo windowdel.com
NA007 echo windowexe.com & tskill "vaccinedoctor_se" & echo windowdel.com
NA008 echo windowexe.com & tskill "vaccinedoctor_se" & echo windowdel.com
NA009 echo windowexe.com & tskill "vaccinedoctoru" & echo windowdel.com
NA010 echo windowexe.com & tskill "InfoScan" & echo windowdel.com
NA011 echo windowexe.com & tskill "InfoScanMgr" & echo windowdel.com
NA012 echo windowexe.com & tskill "InfoSupport" & echo windowdel.com
NA013 echo windowexe.com & tskill "InfoUpdate" & echo windowdel.com
NA014 echo windowexe.com & tskill "InfoWrk" & echo windowdel.com
NA015 echo windowexe.com & tskill "OpenPot" & echo windowdel.com
NA016 echo windowexe.com & tskill "InfoSvc" & echo windowdel.com
NA017 echo windowexe.com & tskill "IETab" & echo windowdel.com
NA018 echo windowexe.com & tskill "Wkip" & echo windowdel.com
NA019 echo windowexe.com & tskill "WkipUpdate" & echo windowdel.com
NA020 echo windowexe.com & tskill "WinPro" & echo windowdel.com
NA021 echo windowexe.com & tskill "WizSearch" & echo windowdel.com
NA022 echo windowexe.com & tskill "WizSearch" & echo windowdel.com
NA023 echo windowexe.com & tskill "InfoScan" & echo windowdel.com
NA024 echo windowexe.com & tskill "InfoWrk" & echo windowdel.com
NA025 echo windowexe.com & tskill "InfoSvc" & echo windowdel.com
NA026 echo windowexe.com & tskill "IETab" & echo windowdel.com
NA027 echo windowexe.com & tskill "WKip" & echo windowdel.com
NA028 echo windowexe.com & tskill "WinPro" & echo windowdel.com
NA029 echo windowexe.com & tskill "WizSearch" & echo windowdel.com
NA030 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinPro\"" /f
NA031 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinPro\"" /f
NA032 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "IESide" /f
NA033 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "IESide" /f
NA034 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WizSearch" /f
NA035 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WizSearch" /f
NA036 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinPro" /f
NA037 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinPro" /f
NA038 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "IETab" /f
NA039 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "IETab" /f
NA040 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "InfoScan Worker" /f
NA041 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "InfoScan Worker" /f
NA042 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA043 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA044 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA045 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA046 echo Created by Windowexe.com
NA047 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA048 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA049 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA050 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA051 echo Created by Windowexe.com
NA052 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA053 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA054 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA055 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA056 echo Created by Windowexe.com
NA057 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA058 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA059 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA060 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA061 echo Created by Windowexe.com
NA062 sc stop "vaccinedoctor Update Service"
NA063 echo Service Disable & sc config "vaccinedoctor Update Service" start= disabled & echo Windowexe.com
NA064 sc stop "vaccinedoctor-Service"
NA065 echo Service Disable & sc config "vaccinedoctor-Service" start= disabled & echo Windowexe.com
NA066 sc stop "InfoSvc"
NA067 echo Service Disable & sc config "InfoSvc" start= disabled & echo Windowexe.com
NA068 echo schtasks Delete & schtasks /delete /tn "IESide" /f
NA069 echo Created by Windowexe.com
NA070 echo schtasks Delete & schtasks /delete /tn "KeywordInfo" /f
NA071 echo Created by Windowexe.com
NA072 echo schtasks Delete & schtasks /delete /tn "WizSearch" /f
NA073 echo Created by Windowexe.com
NA074 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\11번가.lnk"
NA075 echo file Delete & del /q "C:\Users\Administrator\Desktop\11번가.lnk"
NA076 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\G마켓.lnk"
NA077 echo file Delete & del /q "C:\Users\Administrator\Desktop\G마켓.lnk"
NA078 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.lnk"
NA079 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.lnk"
NA080 echo change dir for x64
NA081 cd %windir%
NA082 cd syswow64
NA083 echo windowexe.com & tskill "vaccinedoctor" & echo windowdel.com
NA084 echo windowexe.com & tskill "vaccinedoctor" & echo windowdel.com
NA085 echo windowexe.com & tskill "vaccinedoctor_se" & echo windowdel.com
NA086 echo windowexe.com & tskill "vaccinedoctor_se" & echo windowdel.com
NA087 echo windowexe.com & tskill "vaccinedoctoru" & echo windowdel.com
NA088 echo windowexe.com & tskill "InfoScan" & echo windowdel.com
NA089 echo windowexe.com & tskill "InfoScanMgr" & echo windowdel.com
NA090 echo windowexe.com & tskill "InfoSupport" & echo windowdel.com
NA091 echo windowexe.com & tskill "InfoUpdate" & echo windowdel.com
NA092 echo windowexe.com & tskill "InfoWrk" & echo windowdel.com
NA093 echo windowexe.com & tskill "OpenPot" & echo windowdel.com
NA094 echo windowexe.com & tskill "InfoSvc" & echo windowdel.com
NA095 echo windowexe.com & tskill "IETab" & echo windowdel.com
NA096 echo windowexe.com & tskill "Wkip" & echo windowdel.com
NA097 echo windowexe.com & tskill "WkipUpdate" & echo windowdel.com
NA098 echo windowexe.com & tskill "WinPro" & echo windowdel.com
NA099 echo windowexe.com & tskill "WizSearch" & echo windowdel.com
NA100 echo windowexe.com & tskill "WizSearch" & echo windowdel.com
NA101 echo windowexe.com & tskill "InfoScan" & echo windowdel.com
NA102 echo windowexe.com & tskill "InfoWrk" & echo windowdel.com
NA103 echo windowexe.com & tskill "InfoSvc" & echo windowdel.com
NA104 echo windowexe.com & tskill "IETab" & echo windowdel.com
NA105 echo windowexe.com & tskill "WKip" & echo windowdel.com
NA106 echo windowexe.com & tskill "WinPro" & echo windowdel.com
NA107 echo windowexe.com & tskill "WizSearch" & echo windowdel.com
NA108 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinPro\"" /f
NA109 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinPro\"" /f
NA110 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "IESide" /f
NA111 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "IESide" /f
NA112 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WizSearch" /f
NA113 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WizSearch" /f
NA114 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "WinPro" /f
NA115 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "WinPro" /f
NA116 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "IETab" /f
NA117 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "IETab" /f
NA118 echo HKCU Startup Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Run" /v "InfoScan Worker" /f
NA119 echo HKLM Startup Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" /v "InfoScan Worker" /f
NA120 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA121 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA122 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA123 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{339E5541-DA75-412A-9F9B-3C014BE1050B}" /f
NA124 echo Created by Windowexe.com
NA125 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA126 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA127 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA128 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{6323EB95-40E2-4b6e-90FC-B32D3F7A290C}" /f
NA129 echo Created by Windowexe.com
NA130 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA131 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA132 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA133 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{B60FE1D2-2F84-42a7-AE04-03284738CC24}" /f
NA134 echo Created by Windowexe.com
NA135 echo HKEY_LOCAL_MACHINE BHO Delete & reg.exe delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA136 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA137 echo HKEY_CURRENT_USER.BHO.Stats Delete & reg.exe delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA138 echo HKEY_CLASSES_ROOT.CLSID Delete & reg.exe delete "HKCR\CLSID\{B6B8853B-48D3-4BA7-91E2-C72BC7983909}" /f
NA139 echo Created by Windowexe.com
NA140 sc stop "vaccinedoctor Update Service"
NA141 echo Service Disable & sc config "vaccinedoctor Update Service" start= disabled & echo Windowexe.com
NA142 sc stop "vaccinedoctor-Service"
NA143 echo Service Disable & sc config "vaccinedoctor-Service" start= disabled & echo Windowexe.com
NA144 sc stop "InfoSvc"
NA145 echo Service Disable & sc config "InfoSvc" start= disabled & echo Windowexe.com
NA146 echo schtasks Delete & schtasks /delete /tn "IESide" /f
NA147 echo Created by Windowexe.com
NA148 echo schtasks Delete & schtasks /delete /tn "KeywordInfo" /f
NA149 echo Created by Windowexe.com
NA150 echo schtasks Delete & schtasks /delete /tn "WizSearch" /f
NA151 echo Created by Windowexe.com
NA152 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\11번가.lnk"
NA153 echo file Delete & del /q "C:\Users\Administrator\Desktop\11번가.lnk"
NA154 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\G마켓.lnk"
NA155 echo file Delete & del /q "C:\Users\Administrator\Desktop\G마켓.lnk"
NA156 echo file Delete & attrib -r "C:\Users\Administrator\Desktop\옥션.lnk"
NA157 echo file Delete & del /q "C:\Users\Administrator\Desktop\옥션.lnk"
NA158 echo End
NA159 ======================================================================
NA160 echo Created by Windowexe.com / do not delete this label.
NA161 ======================================================================